Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 673
CVE-2026-16360
Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16359
Incorrect boundary conditions in the Audio/Video: GMP component. This ...
CVE-2026-16359
Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16358
Site isolation issue in the Graphics: WebRender component. This vulner ...
CVE-2026-16358
Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16357
Incorrect boundary conditions in the Graphics component. This vulnerab ...
CVE-2026-16357
Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16356
Sandbox escape due to use-after-free in the Disability Access APIs com ...
CVE-2026-16356
Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.
CVE-2026-16355
JIT miscompilation in the JavaScript Engine: JIT component. This vulne ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2026-16360 Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16359 Incorrect boundary conditions in the Audio/Video: GMP component. This ... | CVSS3: 9.1 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16359 Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13. | CVSS3: 9.1 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16358 Site isolation issue in the Graphics: WebRender component. This vulner ... | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16358 Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16357 Incorrect boundary conditions in the Graphics component. This vulnerab ... | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16357 Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16356 Sandbox escape due to use-after-free in the Disability Access APIs com ... | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16356 Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
CVE-2026-16355 JIT miscompilation in the JavaScript Engine: JIT component. This vulne ... | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад |
Уязвимостей на страницу